The pentest of the internal perimeter is a security audit of the company’s internal network, in which the customer provides access to his network to simulate the actions of an attacker who has penetrated the corporate environment, or an insider with malicious intentions.
This test helps to assess possible ways of privilege escalation and access to critical company data using vulnerable services, software versions with known vulnerabilities or configuration errors.
The main purpose of the test is to identify risks that can lead to compromise of the internal infrastructure, and to make recommendations for improving the protection of the corporate network. Experts also assess the differentiation of rights between employees and the security of confidential data, which helps the company identify potential threats coming from within.
Upon completion of the test, the client receives a detailed report with identified vulnerabilities, risk assessment and description of possible ways of exploitation; recommendations for eliminating vulnerabilities and improving network configuration; as well as an action plan to increase the level of protection of the corporate environment and minimize insider risks.